| Verify "/var/tmp" is mounted with the "nodev" option: |
$ sudo mount | grep /var/tmp
/dev/mapper/ol-var_tmp on /var/tmp type xfs (rw,nodev,nosuid,noexec,seclabel)
Verify that the "nodev" option is configured for /var/tmp:
$ sudo cat /etc/fstab | grep /var/tmp
/dev/mapper/ol-var_tmp /var/tmp xfs defaults,nodev,nosuid,noexec 0 0
If results are returned and the "nodev" option is missing, or if /var/tmp is mounted without the "nodev" option, this is a finding.